CVE-2023-24519 | Milesight UR32L 32.3.0.5 Network Request vtysh_ubus toolsh_excute.constprop.1 command injection (TALOS-2023-1706)
A vulnerability described as critical has been identified in Milesight UR32L 32.3.0.5. Affected by this issue is the function toolsh_excute.constprop.1 of the file vtysh_ubus of the component Network Request Handler. Such manipulation leads to command injection.
This vulnerability is listed as CVE-2023-24519. The attack may be performed from remote. In addition, an exploit is available.